The Cyber Canon, ditching the SOC 2, and the weekly enterprise news - Helen Patton - ESW #416

The Cyber Canon, ditching the SOC 2, and the weekly enterprise news - Helen Patton - ESW #416

Author: Security Weekly Productions July 21, 2025 Duration: 1:49:28

Segment 1 - Interview with Helen Patton: Introducing the Cybersecurity Canon

Did you know that there's a hall-of-fame for cybersecurity books? Over the past decade, the Cybersecurity Canon has published reviews on dozens of cybersecurity books and established a hall of fame. Hall of fame books are defined as titles that all cybersecurity professionals should read - a great short list for those new to the field and overwhelmed by choices.

Helen Patton, co-founder and Chief of Staff for the Cybersecurity Canon joins us to tell us all about the Canon, how it came to be, and its transformation into a more visible and active organization.

We'll also discuss Helen's own book, "Navigating the Cybersecurity Career Path", and an upcoming second book she's working on as well!

Segment Resources:

Segment 2 - Topic: Does the SOC 2 need to die?

AJ Yawn thinks so.

The TL;DR is that he thinks industry-specific frameworks are more appropriate and effective.

You can check out some more of his thoughts on LinkedIn, or on the Alice in Supply Chains podcast.

  • Ayman recommends checking out https://mvsp.dev/ as a potential alternative (or as a complementary process to actually get secure)

Segment 3 - This Week's Enterprise Security News

And finally, in the enterprise security news,

  1. a bit of funding with a side of layoffs
  2. McDonald's applicants are not lovin' it
  3. a WILD story about a vulnerability in the US train system
  4. Meta still on the hook for $8B in privacy violations
  5. What is Agentic Misalignment?
  6. Using AI when coding is… slower?
  7. Auth Omnibus
  8. Pop some popcorn - AI acquisitions are getting crazy

All that and more, on this episode of Enterprise Security Weekly.

Show Notes: https://securityweekly.com/esw-416


Hosted by Adrian Sanabria, Enterprise Security Weekly (Video) is a deep dive into the complex world of protecting large organizations. This isn't just a headline recap; it's a practical, analyst-level discussion for security professionals who need to understand the "why" behind the news. Each episode from Security Weekly Productions brings together a seasoned panel including co-hosts like Katie Teitler-Santullo, Ayman Elsawah, Jason Wood, Jackie McGuire, and Sean Metcalf to dissect emerging threats, architectural shifts, and the tools that promise to help. You'll hear candid evaluations as they put security vendors and their claims under the microscope, separating hype from genuine utility. The conversation revolves around actionable intelligence and strategic trends that empower defenders to build more resilient environments. Tuning into this podcast provides a consistent, informed perspective that cuts through the noise of the daily alert cycle, offering clarity and context that's often hard to find. It’s a video format that adds a layer of connection and detail to these technical discussions, making complex topics more accessible. If your work involves making critical decisions about enterprise security posture, this series serves as a vital resource for staying informed and ahead of the curve.
Author: Language: English Episodes: 100

Enterprise Security Weekly (Video)
Podcast Episodes